security: Drop PrivateUsers=yes from all service files

Signed-off-by: James Valleroy <jvalleroy@mailbox.org>
Reviewed-by: Sunil Mohan Adapa <sunil@medhas.org>
This commit is contained in:
James Valleroy 2020-02-04 18:07:52 -05:00 committed by Sunil Mohan Adapa
parent e5c80e8af3
commit abdcbd3f65
No known key found for this signature in database
GPG Key ID: 43EA1CFF0AA7C5F2
5 changed files with 0 additions and 5 deletions

View File

@ -58,7 +58,6 @@ LockPersonality=yes
NoNewPrivileges=yes
PrivateDevices=yes
PrivateTmp=yes
PrivateUsers=yes
ProtectControlGroups=yes
ProtectKernelLogs=yes
ProtectKernelModules=yes

View File

@ -101,7 +101,6 @@ NoNewPrivileges=yes
PrivateDevices=yes
PrivateMounts=yes
PrivateTmp=yes
PrivateUsers=yes
ProtectControlGroups=yes
ProtectHome=yes
ProtectKernelLogs=yes

View File

@ -16,7 +16,6 @@ NoNewPrivileges=yes
PrivateDevices=yes
PrivateMounts=yes
PrivateTmp=yes
PrivateUsers=yes
ProtectControlGroups=yes
ProtectHome=yes
ProtectKernelLogs=yes

View File

@ -23,7 +23,6 @@ Documentation=man:udiskie(1)
ExecStart=/usr/bin/udiskie
LockPersonality=yes
PrivateTmp=yes
PrivateUsers=yes
ProtectControlGroups=yes
ProtectHome=yes
ProtectKernelLogs=yes

View File

@ -24,7 +24,6 @@ Type=oneshot
LockPersonality=yes
PrivateDevices=yes
PrivateTmp=yes
PrivateUsers=yes
ProtectControlGroups=yes
ProtectKernelLogs=yes
ProtectKernelModules=yes